Understanding Permissions

Each user can interact with the directories based upon the directories parameters specified hereafter:

Access to Private Directories

The private directories can always be viewed and modified by the user that has created them if he/she has at least the base access to the application (level 2 or higher). The owner of a private directory can always add, edit and remove its contacts. The owner of a private directory can also change its description or delete the entire directory.

The private directories cannot be viewed by the administrator or by any other user. Consequently:

Private Directories cannot contain VIP contacts.

Access to Public and Department Directories

Contact Manager manages two types of Corporate Directories: public and department. Public directories are meant to be available to all IAS users, department directories are meant to be available to a subset (group) of the IAS users.

When a new directory is created, you can choose to restrict access to its contents to a group of users by assigning a Department to it. If you do not assign any department to the directory, it will be available to all users.

The Department property determines if a directory can be viewed (that is: browsed and searched) based on the following criteria:

Managing Public and Department directories

If a Directory can be viewed by a User, this doesn't necessarily mean that he/she can change its properties (like the description, department, synchronization.. ) or delete it. Standard User can only view the public directories.

Note: viewing a directory contents means that you can browse and search its contacts.

Contact Manager allows two administrative roles: global administrators and department administrators. Global administrators can always add, edit properties, remove and view all the directories. Department administrators are global administrators limited to one ore more department.

The User Permission Level and the Department the user is assigned to determine the possibility to modify properties, delete or add new directories:

Local Directories

While Private, Public and Department directories are meant to contain external contacts, Local Directories contain the list of the Colleagues, that is the Internal Contacts of an organization. Local Directories are always available. They are created when the administrator adds or removers users to the users' list in the Admin-> User Management web page.

The only way to edit the local directories is through users management. When you edit user properties, the changes are automatically reflected to the Local directories contents.

Depending on the IAS settings, there can be one Local Directory seen as a Public directory, or one Local directory for each department.

Synchronized Directories

The contacts in Synchronized Directories are imported form an external data source. Synchronized directories can be Public, assigned to a Department, or Private, and their properties can be modified following the standard rules described above.

VIP Directories

Public or Department directories, whether synchronized or not, can be marked as VIP. This affects the way those contacts are used in Queue Manager Enterprise.

Local directories cannot marked as VIP. Access to VIP directories follows the standard rules described above.

Adding, Editing and Removing the Contacts

When a directory is created, you specify if its contacts can be edited by anyone by setting the Editable property, meaning "modifiable". The contents of an Editable directory can be edited by all the users who can view them.

The administrators, that is the users who can delete a specific directory, can always edit its contacts regardless the Editable flag.

To summarize:

Exceptions

Examples

Example 1

User Mario Bianchi has permission level 2 for Contact Manager application and belongs to the Sales department.

The administrator created the following directories:

User Mario Bianchi can see all the public directories (the ones with a blank department field). He can also see the Sales directory ("Suppliers") but has no access to the "Partners" directory.

He can then edit the contacts of those directories which have been configured as "user customisable" (editable) by the administrator, for example the International Customers directory. Of course, users cannot edit the contacts of the directories that they can't see.

Example 2

If Mario has permission level 6 and belongs to the department "Sales Imagicle".

He can see all public directories and his department directories. He cannot see "Sales". He can edit the contacts of all directories he can see that are user customisable (modifiable).

With permission level 6 Mario has full control over the directories that belong to his own department ("Sales Imagicle"), which means that he can view, modify, delete or create new directories for his department and edit contacts for them, whether the directories are modifiable or not.

Example 3

Mario has permission level 8 or higher. He has full control on all directories (as the administrator) regardless of which department they belong to and of the modifiability of the directories. But Mario cannot edit the contents of the Local and Synchronized directories.



Article ID: 119
Last updated: 09 Aug, 2021
Revision: 2
Imagicle AppSuite Cross Platform -> Contact Manager -> Administration Guide -> Understanding Permissions
https://kbp.imagicle.com/kb/entry/119/